Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 23 Oct 2002 16:36:26 -0700 (PDT)
From:      Robert Watson <rwatson@FreeBSD.org>
To:        cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   cvs commit: src/sys/modules Makefile src/sys/security/mac_partition mac_partition.c mac_partition.h
Message-ID:  <200210232336.g9NNaQEL040294@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
rwatson     2002/10/23 16:36:26 PDT

  Modified files:
    sys/modules          Makefile 
  Added files:
    sys/security/mac_partition mac_partition.c mac_partition.h 
  Log:
  Provide a simple sample labeled access control policy, mac_partition.
  This policy can be loaded dynamically, and assigns each process a
  partition number, as well as permitting processes to operate outside
  the partition.  Processes contained in a partition can only "see"
  processes inside the same partition, so it's a little like jail.
  The partition of a user can be set using the label mechanisms in
  login.conf.  This sample policy is a good starting point for developers
  wanting to learn about how to produce labeled policies, as it labels
  only one kernel object, the process credential.
  
  Obtained from:  TrustedBSD Project
  Sponsored by:   DARPA, Network Associates Laboratories
  
  Revision  Changes    Path
  1.274     +1 -0      src/sys/modules/Makefile
  1.1       +288 -0    src/sys/security/mac_partition/mac_partition.c (new)
  1.1       +49 -0     src/sys/security/mac_partition/mac_partition.h (new)

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200210232336.g9NNaQEL040294>